red-hat

Pass

Audited by Gen Agent Trust Hub on Sep 29, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs the installation of the @membranehq/cli package from the public NPM registry. This CLI is the primary interface for the vendor's platform and is used to manage integrations.
  • [COMMAND_EXECUTION]: The skill requires the execution of shell commands such as membrane login, membrane connection ensure, and membrane action run to interact with the environment and external services.
  • [INDIRECT_PROMPT_INJECTION]:
  • Ingestion points: The skill processes data from various Red Hat modules including Ansible Navigator, Automation Execution, Insights, and Cost Management via API responses.
  • Boundary markers: No specific delimiters or safety instructions are defined to separate external data from the agent's internal logic.
  • Capability inventory: The skill has the ability to execute shell commands and perform network requests via the membrane CLI.
  • Sanitization: The instructions do not specify any validation or sanitization routines for the data ingested from the Red Hat API.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 29, 2026, 04:56 AM
Security Audit — agent-trust-hub — red-hat